๐๐จ๐ฎ ๐๐จ๐๐ฎ๐ฌ ๐จ๐ง ๐ฒ๐จ๐ฎ๐ซ ๐๐๐๐๐๐ & let me take all the compliance pain away from you. Compliant companies have ๐๐-๐๐% more chance of ๐๐๐๐๐๐๐ ๐๐๐ ๐๐จ๐ง๐ญ๐ซ๐๐๐ญ๐ฌ from clients like Microsoft, Google, Uber, Amazon, Uber and Government. Secure your company with SOC2, ISO 27001, CMMC, GDPR, HIPAA/ HITRUST. Take your AI innovation to the world by complying with ISO 42001, EU AI Act and NIST AI RMF.
๐ Just ping me on Upwork, share your challenge, and within a 15-minute scoping call Iโll deliver a crystal-clear Scope of Work with tailored pricingโso you know exactly what youโll get, how fast, and at what cost
๐ ๐๐๐% ๐๐ฎ๐๐ซ๐๐ง๐ญ๐๐ ๐ฒ๐จ๐ฎ๐ซ ๐๐๐ซ๐ญ๐ข๐๐ข๐๐๐ญ๐ข๐จ๐ง โ ๐จ๐ญ๐ก๐๐ซ๐ฐ๐ข๐ฌ๐ ๐๐๐% ๐ฆ๐จ๐ง๐๐ฒ ๐ซ๐๐ญ๐ฎ๐ซ๐ง๐๐!
CEO selling to US-Government: โAli got us through ISO 9001 and 27001 audits successfully.
CISO selling to Accenture: โMuhammad is an expert for complex compliance requirementsโ
CEO selling to EU clients: โHe, is an absolute asset to any team."
CEO selling to Microsoft & Google: โMuhammad did a terrific job for us on a very short timelineโ
I completely understand the B2B selling requires compliance certification ๐๐ฌ ๐ ๐จ๐ฎ๐ง๐๐๐ซ ๐จ๐ ๐๐ข๐ง๐ฏ๐๐ซ๐ .๐๐จ๐ฆ ๐๐ง๐ ๐๐จ๐ฆ๐ฉ๐ฅ๐ข๐๐ง๐๐๐๐๐๐ก๐ข๐ง๐.๐๐ข (๐ ๐๐จ๐ฆ๐ฉ๐ฅ๐ข๐๐ง๐๐ ๐๐ฎ๐ญ๐จ๐ฆ๐๐ญ๐ข๐จ๐ง ๐ฌ๐จ๐ฅ๐ฎ๐ญ๐ข๐จ๐ง). Also, working with startups & SaaS is exciting for me due to my deep understanding of their unique challenging environment.
I hold CISA, PMP, ISO27001 LI & LA, CMMI ATM, CMMC RP (In Progress), ITIL along with ๐๐๐+ ๐๐จ๐ฆ๐ฉ๐ฅ๐ข๐๐ง๐๐ ๐ฉ๐ซ๐จ๐ฃ๐๐๐ญ๐ฌ with over ๐๐ ๐ฒ๐๐๐ซ๐ฌ of diverse experience.
๐ Don't Forget to ping me on Upwork, share your challenge, and within a 15-minute scoping call Iโll deliver a crystal-clear Scope of Work with tailored pricingโso you know exactly what youโll get, how fast, and at what cost
๐๐จ๐ฆ๐ฉ๐ฅ๐ข๐๐ง๐๐ ๐๐ฎ๐ญ๐จ๐ฆ๐๐ญ๐ข๐จ๐ง ๐ญ๐จ๐จ๐ฅ๐ฌ Drata, Vanta, SecureFrame, Compliance Machine
๐๐๐๐ฎ๐ซ๐ข๐ญ๐ฒ ๐ช๐ฎ๐๐ฌ๐ญ๐ข๐จ๐ง๐ง๐๐ข๐ซ๐ ๐๐ง๐ ๐ฏ๐๐ง๐๐จ๐ซ ๐๐ฌ๐ฌ๐๐ฌ๐ฌ๐ฆ๐๐ง๐ญ ๐ญ๐จ๐จ๐ฅ๐ฌ CyberGRX, Panorays, KY3P (S&P, PWC), RSM, CyberVadis, SIG, SIG Lite, CAIQ, VAS, HECVAT, OneTrust, Graphite Connect, Centrl, Whistic, Process Unity
๐๐๐๐ฎ๐ซ๐ข๐ญ๐ฒ/๐๐จ๐ฆ๐ฉ๐ฅ๐ข๐๐ง๐๐ ๐๐ซ๐๐ฆ๐๐ฐ๐จ๐ซ๐ค๐ฌ: ISO 27001, SOC 2, FedRAMP, NIST 800-53, NIST 800-171, NIST CSF, TISAX, HIPAA, HITRUST CSF, GDPR, NERC, ISO 27017, ISO 27018, CMMC, CMMI, TX-RAMP, StateRAMP, AZ-RAMP, NY DFS 23 / NYCRR Part 500, PCI-DSS, FFIEC, C5, ENISA, Center of Information Security (CIS) CSAT, IRAP, PIPEDA, ISO 42001, NIST AI RMF, EU AI Act
Security Policies & Procedures Documentation
Risk Assessment
Information Security
ISO 27001
IT Compliance Audit
Cybersecurity Management
Security Assessment & Testing
NIST SP 800-53
Information Security Consultation
Penetration Testing
GDPR
Cloud Security
Information Security Audit
Information Security Governance
SOC 2
Hamna Z.
Dubai, United Arab Emirates
$59/hr
4.8
518 jobs
About Me
Iโm a UK-qualified corporate and commercial lawyer with 15 + yearsโ experience helping founders, investors, owners, leaders, and creators make confident legal decisions across the business lifecycle from startup formation and fundraising to growth, exit, or crisis.
I provide fast, practical, clear legal advice that goes beyond compliance. Clients rely on me to reduce risk, protect value, accelerate deals, and resolve complex challenges. Iโve supported startups and multinationals across technology, media, finance, professional services, and consumer sectors globally.
How I Help
I work on high-value legal projects that help businesses grow and protect their interests, including:
โข Drafting and negotiating shareholder and investor agreements
โข Advising on term sheets, cap tables, and fundraising structures
โข Structuring joint ventures, partnerships, and licensing deals
โข Reviewing and negotiating customer, supplier, SaaS, and IP agreements
โข Advising on M&A, exits, and business restructures
โข Conducting compliance audits and responding to regulatory inquiries
โข Assessing risk and providing practical, actionable legal solutions
Whether you need support for a single deal, funding round, or strategic transaction, I help you make legally sound decisions with confidence.
Why Work With Me
With decades of global experience across startups and multinationals, I deliver practical, commercially focused legal guidance that reduces risk, accelerates growth, and protects value.
I respond within 24 hours and deliver ahead of deadlines.
International Distribution Agreement
Contract Drafting
Non-Disclosure Agreement
Corporate Law
Partnership Agreement
Contract Law
Policy Writing
Legal Agreement
Service Level Agreement
Legal Writing
Rental Agreement
Legal Research
Legal Translation
Legal Assistance
Cover Letter Writing
Jaipravin S.
Dubai, United Arab Emirates
$67/hr
4.8
12 jobs
I help businesses get audit-ready for ISO 27001 and ISO 27701 โ without the guesswork. Over 8 years as a GRC and cybersecurity consultant, I've implemented 16+ ISMS frameworks and led enterprise-wide risk assessments across banking, telecom, and government sectors in the UAE, Sri Lanka, Bahrain, Mongolia, Australia, and New Zealand.
If you're preparing for certification, closing gaps found in a previous audit, or building your information security program from scratch, I bring a structured, evidence-based methodology that gets you from policy to practice.
Core Services
ISO 27001 & 27701 Gap Assessments and Implementation
Statement of Applicability (SoA) Development
Cyber Risk Assessments & Risk Register Development
IT General Controls (ITGC) & SOX/ICOFR Audits
Governance, Risk & Compliance (GRC) Advisory
Cybersecurity Policy & Procedure Development
Internal Audit & Certification Readiness
Track Record
Virtusa (Global IT Firm): Led SOX and ICOFR audit covering revenue recognition, procurement, and financial controls
Dialog Axiata (Telecom): Implemented ISO 27001/27701 frameworks, improved audit readiness and closed major privacy control gaps
Sampath Bank (Banking): Conducted enterprise-wide cyber risk assessment for Central Bank regulations, delivered risk register and control strategy
Maldives Ports Authority (Government): Completed ITGC audit improving access control, system configuration, and incident response protocols
What Sets Me Apart
ISO 27001 & 27701 Certified Lead Auditor
8+ years across regulated, high-stakes environments
Delivered results for both C-suite stakeholders and technical teams
Fixed-scope engagements with clear deliverables and timelines โ no open-ended hourly guessing
If you need a second line of defence to review your internal controls, or want a clear roadmap to certification, let's talk.
Sarbanes-Oxley Act
ISO 27001
Information Security Consultation
Information Security Governance
Risk Assessment
Information Security Audit
IT Compliance Audit
Internal Auditing
Information Security
Ayush S.
Dubai, United Arab Emirates
$35/hr
5.0
27 jobs
I've onboarded 700K+ devices, reduced incidents by 40%, and managed global SOCs across 118 countries. I understand the challenge of having strong Microsoft tools but limited resources to monitor threats or ensure compliance; that's where I come in
๐๐๐ง๐โ๐จ ๐๐ค๐ฌ ๐ ๐๐๐ฃ ๐๐๐ก๐ฅ ๐ฎ๐ค๐ช:
๐ญ. ๐ฟ๐๐ฅ๐ก๐ค๐ฎ ๐๐๐๐ง๐ค๐จ๐ค๐๐ฉ ๐ฟ๐๐๐๐ฃ๐๐๐ง ๐๐ฟ๐ ๐ก
Seamless setup for endpoint, identity, and cloud protection with real-time threat detection.
๐ฎ. ๐ฝ๐ช๐๐ก๐ ๐๐ฃ๐ ๐๐๐ฃ๐๐๐ ๐๐๐พ ๐๐ฅ๐๐ง๐๐ฉ๐๐ค๐ฃ๐จ ๐
Establish 24/7 monitoring + incident response, cutting response times by up to 65%.
๐ฏ. ๐ผ๐จ๐จ๐๐จ๐จ ๐๐ฃ๐ ๐๐๐ง๐๐๐ฃ ๐พ๐ก๐ค๐ช๐ ๐๐๐๐ช๐ง๐๐ฉ๐ฎ ๐
Review Azure & M365 against CIS benchmarks and compliance standards (HIPAA, ISO 27001).
๐ฐ. ๐๐๐ง๐๐ค๐ง๐ข ๐๐๐ง๐๐๐ฉ ๐๐ช๐ฃ๐ฉ๐๐ฃ๐ ๐ฏ
Custom KQL queries + playbooks to proactively hunt and respond with clear documentation.
๐ฑ. ๐๐ฅ๐ฉ๐๐ข๐๐ฏ๐ ๐๐ฃ๐ฉ๐ง๐ ๐๐ฟ & ๐๐จ๐๐ง ๐ผ๐๐๐๐จ๐จ ๐
Implement MFA, Conditional Access, and identity controls to block unauthorized risks.
๐ฒ. ๐๐ฃ๐ฉ๐๐๐ง๐๐ฉ๐ ๐๐๐๐ง๐-๐๐๐ง๐ฉ๐ฎ ๐๐ค๐ค๐ก๐จ ๐
Connect AWS GuardDuty, Mimecast, and more into your Microsoft ecosystem.
๐ณ. ๐๐ฃ๐จ๐ช๐ง๐ ๐พ๐ค๐ข๐ฅ๐ก๐๐๐ฃ๐๐ & ๐๐๐ฅ๐ค๐ง๐ฉ๐๐ฃ๐ ๐
Audits + automated reporting to meet regulatory needs and scale with ease.
๐๐ค๐ค๐ก๐จ: Microsoft Azure, Microsoft Sentinel, Defender XDR, Entra ID, Crowdstrike, Zscaler, Mimecast, AWS GuardDuty, SentinelOne, Microsoft Endpoint Manager, Logic Apps.
๐๐ ๐๐ก๐ก๐จ: Security Management, Cloud Security, User Identity Management, Microsoft Active Directory, Multi-Factor Authentication, Network Engineering, Virtualization, Virtual Machine, Incident Response Plan, Threat Detection, Cybersecurity Management, Cybersecurity Monitoring, Compliance, Cloud Security Framework, Application Lifecycle Management, Cloud Services, Microsoft Azure Cloud Security Framework, Compliance Government Reporting Compliance, Azure App Service, Business Application Maintenance, Azure Blockchain Service.
๐๐ฃ๐๐ช๐จ๐ฉ๐ง๐๐๐จ: Professional Services, Financial Services, Technology, Healthcare, Manufacturing, Education, Government/Public Sector
If you're running an SMB or mid-sized enterprise with Microsoft 365 or Azure but lacking dedicated SOC capabilities, I provide the expertise and structure to protect your operations effectively.
๐ Reach out. The best way to get started is with a quick call.
Compliance
Cybersecurity Monitoring
Security Analysis
Cybersecurity Tool
Microsoft Azure
Cybersecurity Management
Cloud Security
Security Management
Microsoft Active Directory
Cloud Security Framework
Multi-Factor Authentication
Azure Blockchain Service
Network Engineering
Microsoft Endpoint Manager
Cloud Services
Muhammad Majid Bin M.
Sharjah, United Arab Emirates
$65/hr
4.0
41 jobs
I help organizations harness AI innovation securely while building robust cybersecurity governance, without the enterprise complexity or cost. As a Virtual CISO specializing in AI and cybersecurity GRC, I bring strategic security leadership that enables growth rather than slowing it down.
Over 14+ years across healthcare, financial services, and technology sectors, I've solved the dual challenge most organizations face today: protecting against traditional cyber threats while managing emerging AI risks. My expertise spans the full security governance spectrum:
Core Expertise
Virtual CISO Services โข AI Governance & Risk Frameworks โข ISO 27001 Implementation & Certification โข Cybersecurity GRC Program Development โข Enterprise Risk Management โข Regulatory Compliance (GDPR, HIPAA, SAMA, EU AI Act) โข Security Framework Design (NIST, ISO) โข Business Continuity Planning โข Information Security Audits โข Policy & Procedure Development โข Incident Response Planning โข Project Management โข Business Process Design & Management
I've established GRC functions from scratch, designed security frameworks for national healthcare projects, implemented AI governance for emerging technologies, and achieved ISO 27001 certifications across regulated industries. But credentials alone don't tell the story; what matters is practical impact.
What sets me apart is practical implementation. I don't just write policies that sit in drawers; I create governance frameworks that work in the real world. Whether developing AI risk assessments for healthcare AI, building NIST-aligned security programs, or serving as a fractional CISO for startups, my solutions strengthen security while enabling growth. Organizations I've worked with have won enterprise contracts, passed rigorous audits, secured funding, and deployed AI systems with confidence.
I am a Certified CISM, ISO 27001 Lead Auditor, PMP, and a trained ISO 42001 Lead Implementer and Advanced AI Security Management (AAISM). However, I measure success by your outcomes, not my credentials.
Whether you need fractional CISO services, AI governance implementation, compliance certification, or risk management programs, I deliver enterprise-level results tailored to your growth stage, budget, and industry requirements.
Ready to build security that supports innovation? Let's connect.
Information Security Consultation
Security Policies & Procedures Documentation
Cybersecurity Management
Technical Project Management
Business Process Modeling
Risk Management
Technical Documentation
IT Consultation
Management Consulting
Information Security Governance
Information Security Audit
Governance, Risk Management & Compliance
Change Management
Business Process Automation
Muhammad Adeel A.
Dubai, United Arab Emirates
$30/hr
4.9
72 jobs
โ Top-Rated QHSE Consultant | 12+ Years Experience | ISO 9001, 14001, 45001, 16304 Audits | Internal Auditor | IMS Expert
Are you looking for a certified QHSE professional to help your business achieve ISO certification, regulatory compliance, or robust risk management?
Iโm a Chemical Engineering Postgraduate with advanced certifications in Occupational Health & Safety Engineering and over 12 years of proven experience in:
๐น QHSE & HSSE Management
๐น Internal & External ISO Audits
๐น Integrated Management Systems (IMS)
๐น Risk Assessment & Emergency Planning
๐น Sustainability & Business Continuity
๐ Industry Expertise:
Iโve successfully supported companies across diverse sectors, including:
Construction | Oil & Gas | Marine | Manufacturing | Processing | Paints | Facilities Management
๐ง Services I Offer (Remotely or Project-Based):
โ ISO Documentation & Implementation
โข ISO 9001, ISO 14001, ISO 45001, ISO 16304
โข QHSE/IMS manuals, policies, and SOPs
โข Customized audit-ready documentation
โข QHSE responses for RFQs and pre-bid submissions
โ Internal & Gap Audits
โข Full-cycle internal audits based on ISO standards
โข Non-conformance identification and corrective actions
โข Marine Waste Management System audits (ISO 16304)
โ HSE & Risk Solutions
โข HSE Risk Assessments (RA), JHA, JSA
โข Emergency Response and Evacuation Plans
โข Business Continuity Planning (BCP)
โข Environmental Impact/Aspect Assessments
โ Remote & On-Demand QHSE Support
โข Serve as your Virtual QHSE Manager or Compliance Advisor
โข Support in NEBOSH, OTHM, IOSH, IDSE, NVQ learning programs
โข Regulatory research and compliance mapping
I am committed to providing accurate, high-quality, and customized solutions that not only meet international standards but also help your organization operate more safely and efficiently.
ISO 14001
HAZOP
ISO 9001
Factory & Supplier Auditing
Workplace Safety & Health
Chemical Engineering
Occupational Health
Business Services
Quality, Health, Safety & Environment Management
Safety Engineering
Internal Auditing
Risk Assessment
Financial Audit
How it works
Post a job for freePost a job
Tell us what you need. Create your own job post or generate one with AI then filter talent matches.
Hire top talent fast
Consult, interview, and hire quickly, so you can meet the freelancers you're excited about.
Collaborate easily
Use Upwork to chat or video call, share files, and track project progress right from the app.
Payment simplified
Manage payments in one place with flexible billing options. Only pay for approved work, hourly or by milestone.
Don't just take our word for it
โUpwork provides an umbrella-level of security. I can see a talentโs work history and ratings. I can hold payments in escrow. I can communicate through Upwork Messages instead of working through my email address.โ
KD
Kim Darling
Emerald Tiger
โUpwork is the best platform to hire skilled professionals when we're not looking for a full-time employee. All the companies in our portfolio use Upwork to find talent across a wide range of fields.โ
DM
David Merry
Kinetic Investments
โOur very specific requirements can be a challengeโWith Upwork, weโre able to access a bigger community to ensure the success of our projects.โ
KK
Katja Krohn
Summa Linguae
How do I hire a Compliance Consultant in the United Arab Emirates on Upwork?
You can hire a Compliance Consultant in the United Arab Emirates on Upwork in four simple steps:
Create a job post tailored to your Compliance Consultant project scope. We'll walk you through the process step by step.
Browse top Compliance Consultant talent on Upwork and invite them to your project.
Once the proposals start flowing in, create a shortlist of top Compliance Consultant profiles and interview.
Hire the right Compliance Consultant for your project from Upwork, the world's largest work marketplace.
At Upwork, we believe talent staffing should be easy.
How much does it cost to hire a Compliance Consultant?
Rates charged by Compliance Consultants on Upwork can vary with a number of factors including experience, location, and market conditions. See hourly rates for in-demand skills on Upwork.
Why hire a Compliance Consultant in the United Arab Emirates on Upwork?
As the world's work marketplace, we connect highly-skilled freelance Compliance Consultants and businesses and help them build trusted, long-term relationships so they can achieve more together. Let us help you build the dream Compliance Consultant team you need to succeed.
Can I hire a Compliance Consultant in the United Arab Emirates within 24 hours on Upwork?
Depending on availability and the quality of your job post, it's entirely possible to sign up for Upwork and receive Compliance Consultant proposals within 24 hours of posting a job description.
Find more freelancers
Top cities for Compliance Consultants in the United Arab Emirates